1. Who We Are
Multi Baseball Connections (multi.baseball-connections.com) is a multiplayer baseball trivia game. This policy explains what personal data we collect, why, how it is stored, and who processes it on our behalf.
2. Age Requirement
This service is intended for users aged 13 years or older. We do not knowingly collect personal data from children under 13. If you believe a child under 13 has provided us with personal data, please contact us so we can delete it.
3. Data We Collect
- Account & sign-in data — you sign in with a Google or GitHub account. Authentication is handled by Supabase Auth. We receive your email address and basic profile information (such as your name and avatar) from that provider. We do not offer email-and-password accounts and we never handle or store a password.
- Nickname — the in-game name you choose on first login. It is set once and cannot be changed later. Stored in our database and shown to other players in the lobby, results, and any leaderboards.
- Favorite team — the MLB team you choose during onboarding. It is set once, cannot be changed afterward, and is used to tailor your experience (for example, team-specific trivia rooms).
- Game scores & history — your score, games played, and per-mode totals are stored to power leaderboards and your stats.
- Private room (party) data — if you create or join a private room, we store the room name and code, its owner, its member list, and each member's scores and games-played within that room.
- Live room data — temporary game room data (questions, player list, live scores) is held in memory during a game session and discarded once the game ends.
- Product analytics — our server records gameplay events (room created, player joined, game started, game finished) together with the game mode, the number of players, a timestamp, and your account ID. We use these to understand how the game is used (active players, completion rates, popular modes, peak hours) and to plan capacity. See section 7.
4. Social Login Data Use
When you sign in with Google, our use of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements. When you sign in with GitHub, we receive only your email and basic profile per GitHub's OAuth terms. In both cases:
- We request only the minimum information needed to identify your account (email and basic profile).
- We do not use this data to serve advertising.
- We do not sell this data or share it with third parties, except with the infrastructure providers that operate the service on our behalf (see section 6).
- We do not use this data for any purpose other than providing and improving the game service.
5. How We Use Your Data
- To authenticate you and maintain your session
- To display your nickname and score to other players
- To maintain leaderboards and your game stats
- To operate private rooms you create or join
- To measure how the game is used, in aggregate, and to plan capacity (product analytics)
We do not sell, rent, or share your data with any third party for marketing or advertising purposes.
6. Where Your Data Is Stored
We use two infrastructure providers, both of which may store data in the United States and/or other regions:
- Google Firebase (Firestore) — stores your profile (nickname, favorite team), leaderboard and game stats, and private room data. Operated by Google LLC and governed by Google's Privacy Policy.
- Supabase — handles authentication (your Google/GitHub login identity) and stores the product-analytics event records described in section 3. Governed by Supabase's Privacy Policy.
7. Analytics
Our analytics are first-party and server-side. There is no third-party analytics SDK, advertising pixel, or tracking cookie in the game client. The gameplay events described in section 3 are written by our own server to our Supabase database and are viewed only through a private internal dashboard restricted to the operator. Aggregate, non-identifying views (daily/weekly/monthly active players, retention, mode popularity) are derived from this data.
8. Data Retention & Deletion
Your profile, leaderboard and stats, and private room membership are retained as long as your account exists. Live room data is discarded automatically after each game.
You can permanently delete your account and all associated data at any time directly from within the app (account menu → delete account). This immediately and irreversibly:
- deletes your profile, leaderboard entry, and score history from Firestore;
- removes your account ID from all stored analytics events (the event rows are kept only in de-identified, aggregate form and can no longer be linked to you); and
- deletes your authentication account from Supabase.
You may also contact us at the address below to request deletion.
9. Your Rights
Depending on your jurisdiction you may have rights to access, correct, or delete your personal data (including rights under GDPR and CCPA). To exercise these rights, use the in-app delete feature or contact us at the address below.
10. Cookies & Local Storage
Supabase Auth stores your login session in your browser (local storage) so you stay signed in. We also use browser localStorage to cache your player info and leaderboard data to reduce database reads. No third-party tracking or advertising cookies are used.